The Perforce client does not restrict the set of files that it overwrites upon receiving a request from the server, which allows remote attackers to overwrite arbitrary files by modifying the client config file on the server, or by operating a malicious server.
References
Configurations
History
21 Nov 2024, 00:24
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/33369 - | |
References | () http://www.securityfocus.com/archive/1/455977/100/0/threaded - |
Information
Published : 2007-01-08 20:28
Updated : 2024-11-21 00:24
NVD link : CVE-2007-0100
Mitre link : CVE-2007-0100
CVE.ORG link : CVE-2007-0100
JSON object : View
Products Affected
perforce
- perforce_client
CWE